From 73281cbaa931dbfc7693547be0249449a235436d Mon Sep 17 00:00:00 2001 From: Alexandre Dulaunoy Date: Thu, 11 Aug 2016 14:24:39 +0200 Subject: [PATCH] More tools added --- _pages/tools.md | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/_pages/tools.md b/_pages/tools.md index a03722a..f50b693 100644 --- a/_pages/tools.md +++ b/_pages/tools.md @@ -36,4 +36,9 @@ For the additional software created by the MISP project, check our [MISP project * [Cuckoo modified](https://github.com/spender-sandbox/cuckoo-modified) - heavily modified version of Cuckoo Sandbox including a [MISP reporting module](https://github.com/spender-sandbox/cuckoo-modified/blob/master/modules/reporting/misp.py) to put the information into a MISP instance. * [Hybrid analysis](https://www.hybrid-analysis.com/) exports in MISP format. * [Joe Sanbox](https://www.joesecurity.org/) outputs analysis in MISP format. - +* [MISP-Extractor](https://github.com/PidgeyL/MISP-Extractor) extracts information from MISP via the API and automate some tasks. +* [IntelMQ](https://github.com/certtools/intelmq) support MISP to retrieve events and update tags. +* [misp-to-autofocus](https://github.com/PaloAltoNetworks/misp-to-autofocus) - script for pulling events from a MISP database and converting them to Autofocus queries. +* [otx_misp](https://github.com/gcrahay/otx_misp/) imports Alienvault OTX pulses to a MISP instance. +* [FireMISP](https://github.com/deralexxx/FireMISP) FireEye Alert json files to MISP Malware information sharing platform (Alpha). +* [cti-toolkit](https://github.com/certau/cti-toolkit) CERT Australia Cyber Threat Intelligence (CTI) Toolkit includes a transform to MISP from STIX.